[Freeipa-users] Replication issue

2017-03-15 Thread tarak sinha
Hi Guys, I have multi-muster replication IPA server, is there any way to check the status of replication from all the nodes centrally. I have encountered replication failed issue on my consumer while checking the slapd logs file. Can anyone tell me to check the status of replication whether it

Re: [Freeipa-users] Replication issue

2014-03-05 Thread Innes, Duncan
] On Behalf Of Steven Jones Sent: 05 March 2014 00:02 To: freeipa-users@redhat.com Subject: Re: [Freeipa-users] Replication issue RHEL 6.4 to RHEL 6.5? regards Steven

Re: [Freeipa-users] Replication issue

2014-03-05 Thread Innes, Duncan
To: Innes, Duncan; freeipa-users@redhat.com Subject: Re: [Freeipa-users] Replication issue On 03/04/2014 01:22 PM, Innes, Duncan wrote: Hi, I'm testing an upgrade of my prod IPA servers in a dev cluster

Re: [Freeipa-users] Replication issue

2014-03-05 Thread Rich Megginson
: [Freeipa-users] Replication issue On 03/04/2014 01:22 PM, Innes, Duncan wrote: Hi, I'm testing an upgrade of my prod IPA servers in a dev cluster at the moment. Finally completed the upgrade, so I tested some user adds via the WebUI. Added user aardvark on ipa01

Re: [Freeipa-users] Replication issue

2014-03-05 Thread Mark Reynolds
On 03/04/2014 03:22 PM, Innes, Duncan wrote: Hi, I'm testing an upgrade of my prod IPA servers in a dev cluster at the moment. Finally completed the upgrade, so I tested some user adds via the WebUI. Added user aardvark on ipa01 - replicated to ipa02 Added user beaver on ipa02 - NOT

[Freeipa-users] Replication issue

2014-03-04 Thread Innes, Duncan
Hi, I'm testing an upgrade of my prod IPA servers in a dev cluster at the moment. Finally completed the upgrade, so I tested some user adds via the WebUI. Added user aardvark on ipa01 - replicated to ipa02 Added user beaver on ipa02 - NOT replicated to ipa01 Added user banana on ipa02 -

Re: [Freeipa-users] Replication issue

2014-03-04 Thread Rich Megginson
On 03/04/2014 01:22 PM, Innes, Duncan wrote: Hi, I'm testing an upgrade of my prod IPA servers in a dev cluster at the moment. Finally completed the upgrade, so I tested some user adds via the WebUI. Added user aardvark on ipa01 - replicated to ipa02 Added user beaver on ipa02 - NOT

Re: [Freeipa-users] Replication issue

2014-03-04 Thread Steven Jones
RHEL 6.4 to RHEL 6.5? regards Steven From: freeipa-users-boun...@redhat.com freeipa-users-boun...@redhat.com on behalf of Innes, Duncan duncan.in...@virginmoney.com Sent: Wednesday, 5 March 2014 9:22 a.m. To: freeipa-users@redhat.com Subject: [Freeipa-users

Re: [Freeipa-users] Replication Issue

2013-04-08 Thread Rich Megginson
On 04/05/2013 08:53 PM, Simo Sorce wrote: On Fri, 2013-04-05 at 09:51 -0600, Rich Megginson wrote: On 04/05/2013 08:41 AM, Simo Sorce wrote: On Fri, 2013-04-05 at 08:30 -0600, Brent Clark wrote: You were correct, my reverse DNS entries for the master and replica were missing. Odd, since they

Re: [Freeipa-users] Replication Issue

2013-04-05 Thread Brent Clark
You were correct, my reverse DNS entries for the master and replica were missing. Odd, since they both existed at one point. Running the same commands again results in the following On the Replica system ipa-replica-manage list replica.example.com -v master.example.com: replica last init

Re: [Freeipa-users] Replication Issue

2013-04-05 Thread Simo Sorce
On Fri, 2013-04-05 at 08:30 -0600, Brent Clark wrote: You were correct, my reverse DNS entries for the master and replica were missing. Odd, since they both existed at one point. Rob, I think we should open a ticket against 389ds, we should never depend on PTR records. In this case I believe

Re: [Freeipa-users] Replication Issue

2013-04-05 Thread Rich Megginson
On 04/05/2013 08:41 AM, Simo Sorce wrote: On Fri, 2013-04-05 at 08:30 -0600, Brent Clark wrote: You were correct, my reverse DNS entries for the master and replica were missing. Odd, since they both existed at one point. Rob, I think we should open a ticket against 389ds, we should never

Re: [Freeipa-users] Replication Issue

2013-04-05 Thread Brent Clark
Thanks for all the help! After fixing the DNS issues, I then solved the LDAP error by rebooting the master and replica. Something I hadnt done since installing IPA on both of them and setting them up. On Fri, Apr 5, 2013 at 9:51 AM, Rich Megginson rmegg...@redhat.com wrote: On 04/05/2013

Re: [Freeipa-users] Replication Issue

2013-04-05 Thread Rich Megginson
On 04/05/2013 11:49 AM, Simo Sorce wrote: On Fri, 2013-04-05 at 09:51 -0600, Rich Megginson wrote: On 04/05/2013 08:41 AM, Simo Sorce wrote: On Fri, 2013-04-05 at 08:30 -0600, Brent Clark wrote: You were correct, my reverse DNS entries for the master and replica were missing. Odd, since they

Re: [Freeipa-users] Replication Issue

2013-04-05 Thread Simo Sorce
On Fri, 2013-04-05 at 09:51 -0600, Rich Megginson wrote: On 04/05/2013 08:41 AM, Simo Sorce wrote: On Fri, 2013-04-05 at 08:30 -0600, Brent Clark wrote: You were correct, my reverse DNS entries for the master and replica were missing. Odd, since they both existed at one point. Rob, I

Re: [Freeipa-users] Replication Issue

2013-04-05 Thread Dmitri Pal
On 04/05/2013 01:50 PM, Rich Megginson wrote: On 04/05/2013 11:49 AM, Simo Sorce wrote: On Fri, 2013-04-05 at 09:51 -0600, Rich Megginson wrote: On 04/05/2013 08:41 AM, Simo Sorce wrote: On Fri, 2013-04-05 at 08:30 -0600, Brent Clark wrote: You were correct, my reverse DNS entries for the

Re: [Freeipa-users] Replication Issue

2013-04-05 Thread Rich Megginson
On 04/05/2013 12:40 PM, Dmitri Pal wrote: On 04/05/2013 01:50 PM, Rich Megginson wrote: On 04/05/2013 11:49 AM, Simo Sorce wrote: On Fri, 2013-04-05 at 09:51 -0600, Rich Megginson wrote: On 04/05/2013 08:41 AM, Simo Sorce wrote: On Fri, 2013-04-05 at 08:30 -0600, Brent Clark wrote: You were

Re: [Freeipa-users] Replication Issue

2013-04-05 Thread Alexander Bokovoy
On Fri, 05 Apr 2013, Dmitri Pal wrote: On 04/05/2013 01:50 PM, Rich Megginson wrote: On 04/05/2013 11:49 AM, Simo Sorce wrote: On Fri, 2013-04-05 at 09:51 -0600, Rich Megginson wrote: On 04/05/2013 08:41 AM, Simo Sorce wrote: On Fri, 2013-04-05 at 08:30 -0600, Brent Clark wrote: You were

Re: [Freeipa-users] Replication Issue

2013-04-05 Thread Alexander Bokovoy
On Fri, 05 Apr 2013, Rich Megginson wrote: Rich do you set LDAP_OPT_X_SASL_NOCANON in 389ds code at all ? Yes. ldap/servers/slapd/ldaputil.c:ldap_set_option(ld, LDAP_OPT_X_SASL_NOCANON, LDAP_OPT_ON); Should this be off by default? Should this be configurable? On by default (meaning no

Re: [Freeipa-users] Replication Issue

2013-04-05 Thread Simo Sorce
On Fri, 2013-04-05 at 09:51 -0600, Rich Megginson wrote: On 04/05/2013 08:41 AM, Simo Sorce wrote: On Fri, 2013-04-05 at 08:30 -0600, Brent Clark wrote: You were correct, my reverse DNS entries for the master and replica were missing. Odd, since they both existed at one point. Rob, I

[Freeipa-users] Replication Issue

2013-04-04 Thread Brent Clark
Ok, I have done as Steven Jones requested... here is the output from the replica I am able to kinit to admin using the password. issuing the ipa-replica-manage command on the replica for the replica replcia.mydomain.com: replica last init status: None last init ended: None last update

Re: [Freeipa-users] Replication Issue

2013-04-04 Thread Rob Crittenden
Brent Clark wrote: Ok, I have done as Steven Jones requested... here is the output from the replica I am able to kinit to admin using the password. issuing the ipa-replica-manage command on the replica for the replica replcia.mydomain.com http://replcia.mydomain.com: replica last init

[Freeipa-users] Replication Issue

2013-04-03 Thread Brent Clark
I have set up 2 IPA servers. I followed the docs on Redhat site to do so. Everything went smooth and the replica was able to pull everything from the master. I was able to import data from an LDAP server and all my users and groups show up fine. I changed my user id password in the GUI on the

Re: [Freeipa-users] Replication Issue

2013-04-03 Thread Steven Jones
From: freeipa-users-boun...@redhat.com [freeipa-users-boun...@redhat.com] on behalf of Brent Clark [bcl...@tendrilinc.com] Sent: Thursday, 4 April 2013 5:15 a.m. To: freeipa-users@redhat.com Subject: [Freeipa-users] Replication Issue I have set up 2 IPA servers. I

Re: [Freeipa-users] Replication Issue

2013-04-03 Thread Dmitri Pal
On 04/03/2013 12:15 PM, Brent Clark wrote: I have set up 2 IPA servers. I followed the docs on Redhat site to do so. Everything went smooth and the replica was able to pull everything from the master. I was able to import data from an LDAP server and all my users and groups show up fine. I